CVE-2022-40303

Name
CVE-2022-40303
Description
An issue was discovered in libxml2 before 2.10.3. When parsing a multi-gigabyte XML document with the XML_PARSE_HUGE parser option enabled, several integer counters can overflow. This results in an attempt to access an array at a negative 2GB offset, typically leading to a segmentation fault.
NVD Severity
medium
Other trackers
Mailing lists
Exploits
Forges
GitHub (code, issues), Aports (code, issues)

References

Type URI
MISC https://gitlab.gnome.org/GNOME/libxml2/-/commit/c846986356fc149915a74972bf198abc266bc2c0
MISC https://gitlab.gnome.org/GNOME/libxml2/-/tags/v2.10.3
Third Party Advisory https://security.netapp.com/advisory/ntap-20221209-0003/
Third Party Advisory https://support.apple.com/kb/HT213534
Third Party Advisory https://support.apple.com/kb/HT213535
Third Party Advisory https://support.apple.com/kb/HT213536
Third Party Advisory https://support.apple.com/kb/HT213531
Third Party Advisory https://support.apple.com/kb/HT213533
Mailing List http://seclists.org/fulldisclosure/2022/Dec/26
Mailing List http://seclists.org/fulldisclosure/2022/Dec/21
Mailing List http://seclists.org/fulldisclosure/2022/Dec/25
Mailing List http://seclists.org/fulldisclosure/2022/Dec/24
http://seclists.org/fulldisclosure/2022/Dec/27

Match rules

CPE URI Source package Min version Max version
cpe:2.3:a:xmlsoft:libxml2:*:*:*:*:*:*:*:* libxml2 >= None < 2.10.3

Vulnerable and fixed packages

Source package Branch Version Maintainer Status
libxml2 3.16-main 2.9.14-r2 Carlo Landmeter <clandmeter@alpinelinux.org> fixed
libxml2 3.15-main 2.9.14-r2 Carlo Landmeter <clandmeter@alpinelinux.org> fixed
libxml2 3.14-main 2.9.14-r2 Carlo Landmeter <clandmeter@alpinelinux.org> fixed
libxml2 3.13-main 2.9.14-r2 Carlo Landmeter <clandmeter@alpinelinux.org> fixed